ESET’s recommendations for identifying and avoiding digital scams during emergencies
The confusion surrounding information and the public's sense of urgency during emergencies make it easier for attackers to use psychological manipulation to intercept contributions, impersonate others, and capture sensitive data, experts warn and explain
In crisis situations or natural disasters, social vulnerability is not only evident on the streets, but also in the digital environment. The initial disorganization and the massive flow of unverified information create the ideal scenario for cybercriminals to deploy social engineering tactics aimed at emotionally manipulating people and compromising their financial assets or personal data.
José Luis Rangel, Commercial Manager of ESET Venezuela, explains the tactics used by attackers during times of high stress: “In times of crisis, natural disasters, or pandemics, cybercriminals use social engineering strategies, which involve the psychological manipulation of individuals and corporations to deceive them and obtain sensitive information.”
Main types of fraud detected during emergencies:
- Fake donation and fundraising pages: Creation of fraudulent websites and unofficial victim registrations that request immediate transfers, taking advantage of the public’s willingness to help.
- Hijacking of messaging accounts (WhatsApp): Compromising personal profiles to send mass messages to contact networks requesting financial assistance or selling currency under a false identity.
- Manipulation with Artificial Intelligence: Generation of fake multimedia content—deceptive news stories, altered audio or video—to simulate rescue situations or fictitious family emergencies.
- Risks on open Wi-Fi networks: Exploitation of community or open, password-free connections to intercept data traffic and confidential information from connected users.
- Deceptive offers of supplies or services: Requests for advance payments or down payments for heavy machinery rental or logistical support services that are never actually provided.
Pay close attention, guidelines: Recommended prevention measures
To avoid falling victim to these threats during critical times, it is essential to apply active verification principles and exercise caution before sharing data or carrying out any type of transaction:
- Verify web addresses (URLs): Carefully check the address bar of any website before clicking or entering credentials.
- Validate the recipients of donations: Be wary if a supposed NGO or aid organization requests transfers via mobile payment or other means directed to individuals instead of institutional accounts.
- Protect confidential data: No aid organization, bank, or official platform will request debit or credit card security codes, passwords, or validation tokens.
- Be wary of emotional urgency: Maintain a critical perspective when viewing chain messages or links that demand immediate action by appealing to panic or the urgent need for help.
In the face of information fragmentation during disasters, cybersecurity education and constant verification are fundamental barriers to protecting both citizens and organizations.
For more valuable information on cybersecurity, visit the ESET website: https://www.eset.com/ve/. You can also follow them on social media: Instagram (@esetla, @esetla_ve) and Facebook (ESET).
Information and main image provided by ESET and Comstat Roland
Follow our news on Google! For current, interesting, and accurate information, click here to see all the content on Bitfinance.news. You can also find us on X/Twitter and Instagram
